¢x ½s¿è«Ç ¢x »O¤j­º­¶ ¢x ­p¤¤­º­¶ ¢x
²Ä0026´Á ¡E 2013.09.20µo¦æ
ISSN 2077-8813
¾ú¥v¦^ÅU ­q¾\/¨ú®ø ®Õ°ÈªA°È ±MÃD³ø¾É   §Þ³N½×¾Â ±ÀÂË¥Zª«
­º­¶ > §Þ³N½×¾Â
§Þ³N½×¾Â

ºô¯¸ºÞ²zªÌ¤£¥i¤£ª¾:AppServ®M¥ó¦¨¬°Àb«È¤J«I«áªù

§@ªÌ¡G§õ¬ü¶² / ­pºâ¾÷¤Î¸ê°Tºô¸ô¤¤¤ßºô¸ô²Õµ{¦¡³]­p®v

¨Ï¥ÎAppServ¥i¥H¦bWindows§@·~¨t²Î¤¤»´ÃP¦w¸Ë»P¬[³]ºô¯¸¦øªA¾¹¡AAppServ¥]§tApache¡BPHP¡BMysql»PphpMyAdminµ¥ºô¯¸Àô¹Ò¤¸¥ó¡A²`¨ü¤@¯ë¤HªºÅwªï¡C¦]¬°AppServ¤w¸g5¦~¥¼§ó·s¡AÀb«È§Q¥Î¨äphpMyAdminªºº|¬}´Ó¤J¤ì°¨«áªùµ{¦¡¡A¦]¦ÓIJµo¦h°_¸ê¦w¨Æ¥ó¡C¥»¤¤¤ß¯S¦¹²`¤J¤ÀªRAppServ®M¥óº|¬}»P¤ì°¨«áªùªº¹B§@­ì²z¡A¥H´£¨Ñºô¯¸ºÞ²zªÌ¦³®Ä¸Ñ¨M¤è®×¡C

«e¨¥
102¦~6¤ë¥÷¡A­p¸ê¤¤¤ß±µÀò¥»®Õ45¥x¥D¾÷Sdbot¸ê¦w¨Æ¥ó¡A³o45¥x²§±`¥D¾÷«D±`¯S§O¡A¦P®ÉIJµo¤º¹ï¥~ªºIRC²§±`³s½u¤Î¥~¹ï¤ºªºSdbot²§±`³s½u¡CÁöµM¦b³q³ø«á¥D¾÷ºÞ²zªÌ¦³³B²z²§±`¥D¾÷¡A¦ý¦³¨Ç¥D¾÷«o¦]³B²z¤£§¹µ½¡A¦Ó¦A¦¸Ä²µo¦P¼Ëªº¸ê¦w¨Æ¥ó¡C³z¹Lºô¸ô¬y¶q¤ÀªR¨t²Î¤]µo²{¾D³q³øªº²§±`¥D¾÷¹ï¥~µo¥X¤j¶qªºUDP Flooding§ðÀ»¡C¬°¤F½T¹ê¦^´_²§±`¥D¾÷¥H¦³®Äªý¤î²§±`¥D¾÷¹ï¥~§ðÀ»¡A§Ú­Ì¨M©w²`¤J¤ÀªRSdbot¤ì°¨µ{¦¡ªº¹B§@­ì²z¡A´£¨Ñ¥»®Õºô¯¸ºÞ²zªÌ³Ì¨Î¸Ñ¨M¤è®×¡C

AppServº|¬}»PSdbot¹B§@­ì²z
¦bÀH¾÷¤ÀªR3¥x³Q³q³ø¬°²§±`¥D¾÷ªººô¸ô«Ê¥]«á¡A§Ú­Ìµo²{³o¨Ç²§±`¥D¾÷ªºphpMyAdmin­¶­±¦s¦bµÛ³Q¥~³¡¥D¾÷¦s¨úªº¬ö¿ý¡Aªì¨B±oª¾³o¨Ç²§±`¥D¾÷ªº°ÝÃD»PphpMyAdmin¦³Ãö¡C¦ÓphpMyAdmin¥iÅýºÞ²zªÌ³z¹LWeb¤¶­±ºÞ²z«áºÝMysql¸ê®Æ®w¡A´£¨Ñ¸ê®Æ®w¤§¶×¥X¡B¶×¤J¡B§R°£»P­×§ïµ¥¥\¯à¡A¨Ï¥Î¸Ó®M¥ó¥i¼W¥[ºÞ²z«á¥x¸ê®Æ®wªº«K§Q©Ê¡C¦Ü©ó¬°¦ó¥H¤Î¦p¦ó³Q´c·Nµ{¦¡¾Þ±±¡A«h»Ý­n§ó¶i¤@¨Bªº¤ÀªR¡C

¸g¹L¦V³Q³q³øªº²§±`¥D¾÷ºÞ²zªÌ¬d¸ß«á½T»{³o¨Ç¥D¾÷³£¦³¤@­Ó¦@³q©Ê¡A§¡¦w¸Ë¤FAppServ 2.5.10®M¥ó¡CAppServ®M¥ó¦b¦w¸Ë®É¦Û°ÊÀ°¨Ï¥ÎªÌ±NApache¡BPHP¡BMysql»PPhpMyAdmin¥|­Ó®M¥ó¦w¸Ë¨Ã³]©w¦n¡A´N¦]¬°³o¼Ëªº¤è«K©Ê¡A³\¦h¾Ç¥Í¬[³]ºô¯¸®É³ß¦n±Ä¥Î³o­Ó¾ã¦X®M¥ó¡A¹Ï¤@¬°¦w¸Ë¦nAppServ«áªº¹w³]­º­¶¡C


¹Ï¤@ AppServ¦w¸Ë§¹¦¨«áªº¹w³]­¶­±

§Ú­Ì¤ÀªR¥»®Õ²§±`¥D¾÷ªº«Ê¥]«á³v¨BÁÙ­ì¾ã­Ó¸ê¦w¨Æ¥óªº¹B§@­ì²z¡C­º¥ý¡A§ðÀ»ªÌ§Q¥ÎphpMyAdmin¤¤"setup.php"ªºº|¬}¡A±N´c·NªºPHP code(µ{¦¡½X)´Ó¤J¨ü®`¥D¾÷¡A¨Ã³z¹Lsetup.php­¶­±¤WªººÞ²z¿ï¶µ°Ñ¼Æ(¦p¹Ï¤GÅã¥Ü¤§«ö¶s¿ï¶µ)¡A°°³y»PServerºÝ·¾³qªºToken¡A±N´c·Nµ{¦¡½X¼g¤J¥D¾÷¡A¦p¹Ï¤T©Ò¥Ü¡C¦P®É§Q¥Î¦¹­¶­±±NPHP³]©wÀÉ­«¸m(reload)¡A¦b­«¸mªº¹Lµ{¤¤°õ¦æ³Q´Ó¤Jªº´c·Nµ{¦¡½X¡C¾É­P¨ü®`¥D¾÷¦Û°Ê³s½u¦Ü¥~³¡¥D¾÷¤U¸ü¨Ã°õ¦æSdbot¤ì°¨µ{¦¡¡C¨ü®`¥D¾÷¾D¨ü·P¬V«á¡AÀH§Y³z¹LIRC(Internet Relay Chat)²á¤Ñ«Ç¦VBot C&C Server(Control & Command Server)³ø¨ì¨Ãµ¥­Ô§ðÀ»«ü¥O¡A¦¨¬°Botnet(íL«Íºô¸ô)ªº¤@­û¡C³q±`Botªº¬¡°Ê¥]§t¡A±qInternet¤U¸ü´c·N³nÅé¡A±q¨ü®`¥D¾÷ÅѨú¾÷±Ó¸ê®Æ¡A¤J«I¨ä¥L¨t²Î¡A©ÎªÌµo°ÊDDoS (Distributed Denial-of-Service)§ðÀ»¨ä¥L¨t²Îµ¥¡C


¹Ï¤G setup.phpºô­¶ºÞ²z°Ñ¼Æ³]©w¤¶­±


¹Ï¤T ºô¸ô«Ê¥]¤ÀªRÅã¥Ü³z¹Lsetup.php­¶­±´Ó¤J´c·Nµ{¦¡½X

¡@

±q¥»®Õ³Q³q³øªº²§±`¥D¾÷¤§ºô¸ô«Ê¥]¤ÀªR¤¤µo²{¡A²§±`¥D¾÷±µ¦¬¨ì§ðÀ»«ü¥O«á¡A¶}©l¹ï§ðÀ»¥Ø¼ÐIPµo¥X¤j¶qªºUDP Flood§ðÀ»¡A¦p¹Ï¥|©Ò¥Ü¡C§ðÀ»©R¥O¥]§tUDP¬x¤ô§ðÀ»¶}©l(UDPFlood Started)¡B§ðÀ»¥Ø¼Ð¥D¾÷IP¦ì§}¡B§ðÀ»«Ê¥]¼Æ¶q¤Î§ðÀ»µ²§ô(UDPFlood Finished)µ¥¡C¤j¶qªºUDP Flood§ðÀ»¤£¶È¼vÅT²§±`¥D¾÷¤§°Ï°ìºô¸ô¶Ç¿é³t«×¡A¥»¾÷´£¨Ñ¤§ªA°È¤]µLªk¥¿±`¹B§@¡C


¹Ï¥| ºô¸ô«Ê¥]¤ÀªRÅã¥Ü²§±`¥D¾÷±µ¦¬ªº§ðÀ»«ü¥O
¡@

«Øij±¹¬I
¥Ñ©óSdbotªº¯S©Ê¡A¥D¾÷·P¬V«á¶È·|±NSdbot¼È¦s©ó°O¾ÐÅ餤¡A¦]¦¹³z¹L­«·s¶}¾÷«K¥i±NSdbot¦Û¥D¾÷¤¤²M°£¡C°£¦¹¤§¥~¡AÁٻݧR°£¦³º|¬}ªºsetup.php¡A¥H§Kº|¬}¦A¦¸³Q§Q¥Î¡C¦]¦¹§Ú­Ì´£¨Ñ¨âºØ«Øij¡A¤@ºØ¬Oºò«æ±¹¬I¡A¬I§@«á¥i¥H¦bµu®É¶¡¤ºÅýºô¯¸«ì´_¥¿±`¹B§@¡A¥t¤@ºØ«h¬Oªøªv¤[¦wªº±¹¬I¡C¦]¬°AppServ®M¥óªø¹F¤­¦~¥¼´£¨Ñ§ó·sµ{¦¡¡A©Î³\ÁÙ¦³¨ä¥¦º|¬}¡A¥¼¨Ó¤´¦³º|¬}³Q§Q¥Îªº­·ÀI¡A­«·s¦w¸Ë³Ì·sª©¥»ªººô¯¸À³¥Îµ{¦¡¤~¬O³Ì¨Î¸Ñ¨M¤è®×¡C

ºò«æ«Øij±¹¬I¡G

§R°£C:\AppServ\www\phpMyAdmin\scripts\setup.php¡]¦¹¬°¹w³]¸ô®|¡A»Ý½T»{¥D¾÷setup.phpªº¸ô®|¡^
­«·s±Ò°Ê¥D¾÷¡]°È¥²²MªÅ¥D¾÷°O¾ÐÅ餤ªº§ðÀ»µ{¦¡¡^

¦³®Ä«Øij±¹¬I¡G
ƒÜ «Øijºô¯¸ºÞ²zªÌ±N­«­n¸ê®Æ³Æ¥÷«á¡A²¾°£AppServ®M¥ó¡A¨Ã¥B­«·s¦w¸Ë³Ì·sª©ªºApache¡BPHP¡BMysql¡BPhpMyAdmin¡C
¡@

°Ñ¦Ò¸ê®Æ
[1] http://www.appservnetwork.com/
[2] http://cert.tanet.edu.tw/pdf/phpMyAdmin.pdf

ª©Åv©Ò¦³ © °ê¥ß¥xÆW¤j¾Ç­pºâ¾÷¤Î¸ê°Tºô¸ô¤¤¤ß AllRights Reserved.
¹q¸Ü¡G02-33665022 ©Î 3366-5023 ¶Ç¯u¡G 02-23637204
ŪªÌ·N¨£«H½c¡Gntuccepaper@ntu.edu.tw
¦a§}¡G10617 »O¥_¥«Ã¹´µºÖ¸ô¥|¬q¤@¸¹
«Øij³Ì¨Î¿Ã¹õ¸ÑªR«× 1024*768